CVE-2012-2469
high
CVSS v3
—
CVSS v2
7.8
VIR risk
7.8
Description
Cisco NX-OS 4.2, 5.0, 5.1, and 5.2 on Nexus 7000 series switches, when the High Availability (HA) policy is configured for Reset, allows remote attackers to cause a denial of service (device reset) via a malformed Cisco Discovery Protocol (CDP) packet, aka Bug IDs CSCtk34535 and CSCtk19132.
Predictions
Exploit likelihood
20%
Patch ETA
—
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
Vendor advisory: psirt@cisco.com — http://www.cisco.com/en/US/docs/switches/datacenter/sw/5_x/nx-os/release/notes/52_nx-os_release_note.html
References
- http://www.4salesbyself.com/troubleshooting-random-nexus-reboots.aspx
- http://www.cisco.com/en/US/docs/switches/datacenter/sw/5_x/nx-os/release/notes/52_nx-os_release_note.html
- http://www.securitytracker.com/id?1027352
- http://www.4salesbyself.com/troubleshooting-random-nexus-reboots.aspx
- http://www.cisco.com/en/US/docs/switches/datacenter/sw/5_x/nx-os/release/notes/52_nx-os_release_note.html
- http://www.securitytracker.com/id?1027352
Verify integrity in audit chain (admin only). AS-IS.